Description
IBM Sterling File Gateway 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an authenticated user to enumerate usernames due to an observable discrepancy in request responses.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-51294 | IBM Sterling File Gateway 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an authenticated user to enumerate usernames due to an observable discrepancy in request responses. |
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7176083 |
|
History
Mon, 27 Jan 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 27 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Sterling File Gateway 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an authenticated user to enumerate usernames due to an observable discrepancy in request responses. | |
| Title | IBM Sterling File Gateway information disclosure | |
| First Time appeared |
Ibm
Ibm sterling File Gateway |
|
| Weaknesses | CWE-204 | |
| CPEs | cpe:2.3:a:ibm:sterling_file_gateway:6.0.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:sterling_file_gateway:6.1.2.5:*:*:*:*:*:*:* cpe:2.3:a:ibm:sterling_file_gateway:6.2.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:sterling_file_gateway:6.2.0.1:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm sterling File Gateway |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-01-27T17:57:38.806Z
Reserved: 2023-10-31T00:13:45.654Z
Link: CVE-2023-47159
Updated: 2025-01-27T16:47:22.374Z
Status : Received
Published: 2025-01-27T16:15:29.593
Modified: 2025-01-27T16:15:29.593
Link: CVE-2023-47159
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD